PT-2008-5012 · Apple · Macos X+2

Publicado

2008-10-10

·

Atualizado

2017-08-08

·

CVE-2008-3642

CVSS v2.0

9.3

Alta

VetorAV:N/AC:M/Au:N/C:C/I:C/A:C
Name of the Vulnerable Software and Affected Versions Mac OS X versions 10.4.11 through 10.5.5
Description The issue is related to a buffer overflow in ColorSync, which can be triggered by an image containing a crafted ICC profile. This could lead to a denial of service, causing the application to terminate, and potentially allow the execution of arbitrary code.
Recommendations For Mac OS X versions 10.4.11 through 10.5.5, update to a newer version to mitigate the risk.

Correção

Buffer Overflow

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Enumeração de Fraquezas

Identificadores relacionados

CVE-2008-3642

Produtos afetados

Colorsync
Macos X
Safari